{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,10]],"date-time":"2026-04-10T17:18:21Z","timestamp":1775841501517,"version":"3.50.1"},"reference-count":79,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2023,1,1]],"date-time":"2023-01-01T00:00:00Z","timestamp":1672531200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by-nc-nd\/4.0\/"}],"funder":[{"DOI":"10.13039\/501100001871","name":"FCT - Portuguese Foundation for Science and Technology","doi-asserted-by":"publisher","award":["DFA\/BD\/146528\/2018"],"award-info":[{"award-number":["DFA\/BD\/146528\/2018"]}],"id":[{"id":"10.13039\/501100001871","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001871","name":"FCT - Portuguese Foundation for Science and Technology","doi-asserted-by":"publisher","award":["LA\/P\/0063\/2020"],"award-info":[{"award-number":["LA\/P\/0063\/2020"]}],"id":[{"id":"10.13039\/501100001871","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Access"],"published-print":{"date-parts":[[2023]]},"DOI":"10.1109\/access.2023.3332222","type":"journal-article","created":{"date-parts":[[2023,11,13]],"date-time":"2023-11-13T19:28:08Z","timestamp":1699903688000},"page":"127907-127930","source":"Crossref","is-referenced-by-count":3,"title":["Privacy-Preserving Machine Learning on Apache Spark"],"prefix":"10.1109","volume":"11","author":[{"ORCID":"https:\/\/orcid.org\/0000-0003-4293-9887","authenticated-orcid":false,"given":"Cl\u00e1udia V.","family":"Brito","sequence":"first","affiliation":[{"name":"INESC TEC, Porto, Portugal"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-3838-8664","authenticated-orcid":false,"given":"Pedro G.","family":"Ferreira","sequence":"additional","affiliation":[{"name":"INESC TEC, Porto, Portugal"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-7203-2621","authenticated-orcid":false,"given":"Bernardo L.","family":"Portela","sequence":"additional","affiliation":[{"name":"INESC TEC, Porto, Portugal"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Rui C.","family":"Oliveira","sequence":"additional","affiliation":[{"name":"INESC TEC, Porto, Portugal"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-9752-2822","authenticated-orcid":false,"given":"Jo\u00e3o T.","family":"Paulo","sequence":"additional","affiliation":[{"name":"INESC TEC, Porto, Portugal"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref1","volume-title":"HIPAA for Professionals | HHS.Gov","year":"2021"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-57959-7"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1016\/j.jnca.2016.08.016"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1109\/MSP.2010.186"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.5555\/3241094.3241142"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813677"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2018.00038"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2015.23241"},{"key":"ref9","first-page":"201","article-title":"CryptoNets: Applying neural networks to encrypted data with high throughput and accuracy","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Gilad-Bachrach"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2017.2787987"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1145\/2487726.2488368"},{"key":"ref12","article-title":"Chiron: Privacy-preserving machine learning as a service","author":"Hunt","year":"2018","journal-title":"arXiv:1803.05961"},{"key":"ref13","article-title":"Efficient deep learning on multi-source private data","author":"Hynes","year":"2018","journal-title":"arXiv:1807.06689"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1145\/3308558.3314129"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1145\/3376930.3376979"},{"key":"ref16","first-page":"283","article-title":"Opaque: An oblivious and encrypted distributed analytics platform","volume-title":"Proc. 14th USENIX Symp. Netw. Syst. Design Implement. (NSDI)","author":"Zheng"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1145\/3320269.3384763"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1145\/2988336.2988350"},{"key":"ref19","first-page":"77","article-title":"Decision-based adversarial attacks: Reliable attacks against black-box machine learning models","volume-title":"Proc. 6th Int. Conf. Learn. Represent.","author":"Brendel"},{"key":"ref20","first-page":"1309","article-title":"Exploring connections between active learning and model extraction","volume-title":"Proc. 29th USENIX Secur. Symp. (USENIX Secur.)","author":"Chandrasekaran"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1145\/3555776.3578591"},{"key":"ref22","author":"-Sustainable Development Strategy International Group","year":"2022","journal-title":"SGX-Spark"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134095"},{"key":"ref24","volume-title":"Hibench is a Big Data Benchmark Suite","year":"2022"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1145\/2934664"},{"issue":"1","key":"ref26","first-page":"1235","article-title":"MLlib: Machine learning in apache spark","volume":"17","author":"Meng","year":"2016","journal-title":"J. Mach. Learn. Res."},{"key":"ref27","first-page":"619","article-title":"Oblivious $multi-party$ machine learning on trusted processors","volume-title":"Proc. 25th USENIX Secur. Symp. (USENIX Secur.)","author":"Ohrimenko"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1145\/3533737.3535098"},{"issue":"4","key":"ref29","first-page":"18","article-title":"TrustZone: Integrated hardware and software security","volume":"3","author":"Alves","year":"2004","journal-title":"Inf. Quart."},{"key":"ref30","volume-title":"Azure Confidential Computing","author":"Azure","year":"2022"},{"key":"ref31","first-page":"645","article-title":"Graphene-SGX: A practical library OS for unmodified applications on SGX","volume-title":"Proc. USENIX Annu. Tech. Conf.","author":"Tsai"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1145\/1950365.1950399"},{"key":"ref33","volume-title":"Pal Host ABI","year":"2023"},{"key":"ref34","volume-title":"Manifest Syntax","year":"2023"},{"key":"ref35","volume-title":"Gramine Library OS With Intel SGX Support","year":"2023"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.3389\/fgene.2018.00587"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.1016\/j.jjimei.2021.100012"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1145\/3128572.3140448"},{"key":"ref39","article-title":"Adversarial machine learning at scale","volume-title":"Proc. Int. Conf. Learn. Represent.","author":"Kurakin"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.00474"},{"key":"ref41","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.41"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1109\/MSEC.2018.2888775"},{"key":"ref43","first-page":"1291","article-title":"$updates-leak$: Data set inference and reconstruction attacks in online learning","volume-title":"Proc. 29th USENIX Secur. Symp. (USENIX Secur.)","author":"Salem"},{"key":"ref44","doi-asserted-by":"publisher","DOI":"10.1145\/3177872"},{"key":"ref45","first-page":"1","article-title":"Varys: Protecting SGX enclaves from practical side-channel attacks","volume-title":"Proc. USENIX Annu. Tech. Conf.","author":"Oleksenko"},{"key":"ref46","doi-asserted-by":"publisher","DOI":"10.1109\/SFCS.2001.959888"},{"key":"ref47","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-70972-7_27"},{"key":"ref48","doi-asserted-by":"publisher","DOI":"10.1145\/2911451.2911489"},{"key":"ref49","volume-title":"Distributed ML and Linear Regression","author":"Dowling","year":"2017"},{"key":"ref50","doi-asserted-by":"publisher","DOI":"10.1109\/CICN.2014.220"},{"key":"ref51","doi-asserted-by":"publisher","DOI":"10.2307\/2699986"},{"key":"ref52","first-page":"3182","article-title":"Gradient boosted decision trees for high dimensional sparse output","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Si"},{"key":"ref53","doi-asserted-by":"publisher","DOI":"10.1109\/ICDE.2008.4497429"},{"key":"ref54","doi-asserted-by":"publisher","DOI":"10.1198\/106186006X113430"},{"key":"ref55","article-title":"Analysis of PCA algorithms in distributed environments","author":"Elgamal","year":"2015","journal-title":"arXiv:1503.05214"},{"key":"ref56","article-title":"Boosting and naive Bayesian learning","volume-title":"Proc. Int. Conf. Knowl. Discovery Data Mining","author":"Elkan"},{"key":"ref57","doi-asserted-by":"publisher","DOI":"10.1109\/WISA.2016.45"},{"key":"ref58","article-title":"Slalom: Fast, verifiable and private execution of neural networks in trusted hardware","author":"Tram\u00e8r","year":"2018","journal-title":"arXiv:1806.03287"},{"key":"ref59","article-title":"TensorSCONE: A secure TensorFlow framework using Intel SGX","author":"Kunkel","year":"2019","journal-title":"arXiv:1902.04413"},{"key":"ref60","article-title":"Privado: Practical and secure DNN inference with enclaves","author":"Grover","year":"2018","journal-title":"arXiv:1810.00602"},{"key":"ref61","doi-asserted-by":"publisher","DOI":"10.1145\/3300061.3345447"},{"key":"ref62","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2017.23500"},{"key":"ref63","first-page":"689","article-title":"{SCONE}: Secure linux containers with intel {SGX}","volume-title":"Proc. 12th USENIX Symp. Oper. Syst. Design Implement. (OSDI)","author":"Arnautov"},{"key":"ref64","doi-asserted-by":"publisher","DOI":"10.1145\/3231594"},{"key":"ref65","article-title":"SGX-LKL: Securing the host OS interface for trusted execution","author":"Priebe","year":"2019","journal-title":"arXiv:1908.11143"},{"key":"ref66","doi-asserted-by":"publisher","DOI":"10.1145\/3373376.3378469"},{"key":"ref67","volume-title":"Enarx: Webassembly + Confidential Computing","year":"2022"},{"key":"ref68","doi-asserted-by":"publisher","DOI":"10.1109\/tetc.2023.3281738"},{"key":"ref69","volume-title":"Apache Teaclave","year":"2020"},{"key":"ref70","first-page":"285","article-title":"Glamdring: Automatic application partitioning for Intel $SGX$","volume-title":"Proc. USENIX Annu. Tech. Conf. (USENIX ATC)","author":"Lind"},{"key":"ref71","first-page":"505","article-title":"Civet: An efficient Java partitioning framework for hardware enclaves","volume-title":"Proc. 29th USENIX Secur. Symp. (USENIX Secur.)","author":"Tsai"},{"key":"ref72","doi-asserted-by":"publisher","DOI":"10.1145\/3464298.3493406"},{"key":"ref73","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.12"},{"key":"ref74","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134056"},{"key":"ref75","doi-asserted-by":"publisher","DOI":"10.1109\/ALLERTON.2015.7447103"},{"key":"ref76","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978318"},{"key":"ref77","first-page":"554","article-title":"Data-oblivious data structures","volume-title":"Proc. 31st Int. Symp. Theor. Aspects Comput. Sci. (STACS)","author":"Mitchell"},{"key":"ref78","volume-title":"Optimizing Apache Spark UDFS","year":"2022"},{"key":"ref79","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-70972-7_27"}],"container-title":["IEEE Access"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/6287639\/10005208\/10314994.pdf?arnumber=10314994","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,3,2]],"date-time":"2024-03-02T17:26:30Z","timestamp":1709400390000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10314994\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023]]},"references-count":79,"URL":"https:\/\/doi.org\/10.1109\/access.2023.3332222","relation":{},"ISSN":["2169-3536"],"issn-type":[{"value":"2169-3536","type":"electronic"}],"subject":[],"published":{"date-parts":[[2023]]}}}